ERM at skyguide and interface with BCM

Size: px
Start display at page:

Download "ERM at skyguide and interface with BCM"

Transcription

1 ERM at skyguide and interface with BCM - Fachveranstaltung Netzwerk Risikomanagement - Aarburg, 8 September J. Schulte, Enterprise Risk Manager

2 Content overview of skyguide company activities and services enterprise risk management at skyguide overall ERM process extended ERM interface ERM-BCM at skyguide page 2

3 Skyguide's synopsis page 3

4 Skyguide's shareholders (2015) total share capital CHF 140 millions. Swiss confederation 99,94 % aeronautical associations, 0,06 % airport owners, cantons and cities, unions page 4

5 Income statement ANS (2016) 40.7 Mn skyguide is financed by Mn CHF Mn Mn Routes charges Landing charges Military compensation Routes charges (60.5%) Landing charges for cat. I & II airports (30.3%) Military compensation (9.2%) page 5

6 Human resources (as of 31 December 2016, in FTE) skyguide offers 1'426 full time jobs 43.6 Safety, Security, Quality (incl ATCOs) Operations* Finances & Services Engineering & Technical Services Corporate Development Human Resources 0 Safety, Security, Quality Operations Finances & Services Engineering & Technical Services Corporate Development Human Resources Directorate 32.7 Directorate** * including trainees ** includes Corporate Communication and Innovation & Change page 6

7 skyguide's locations Munich Civil locations Military locations Zurich Kloten St.Gall Altenrhein Dübendorf Grenchen Emmen Payerne Bern Belp Alpnach Buochs Meiringen Geneva Cointrin Lyon Sion Locarno Lugano Agno Milano page 7

8 IFR traffic all skyguide centres (in number of IFR flights, source : CFMU) page 8

9 Swiss and delegated Airspace Reims 41 % outside CH Karlsruhe Munich Paris 59 % inside CH Vienne Aix-en- Provence Milano / Roma Padova page 9

10 Content overview of skyguide company activities and services enterprise risk management at skyguide overall ERM process extended ERM interface ERM-BCM at skyguide page 10

11 Skyguide's ERM in a nutshell Scope of skyguide's ERM - All events that may affect skyguide's ability to achieve its objectives - Whole skyguide organisation (cross-departmental framework) ERM introduced in skyguide end of 2006 ERM set up as management tool for prioritizing risks and for supporting risk-based decision making ERM integrated in skyguide's overall planning process (in particular strategic planning) ERM composed of 2 fundamental steps : risk assessment and risk response Risk reviews done twice a year and reported at EB and BoD level ERM process supported by specific tool (R2C) available throughout the entire company page 11

12 Two possible ways for RM Need for RM Skyguide has chosen to implement a Qualitative RM Quantitative RM Qualitative RM Needs a lot of effort/investments Huge historical data set required Relies on intuition and know how of staff Partly subjective Not feasible for SME* Feasible for SME* * SME = Small and Medium Enterprises page 12

13 Added-value of ERM Through reporting of risks from departments/processes/ projects/programs, get overall view of risk portfolio at skyguide By improving awareness of RM in skyguide and by using RM as a tool in (daily) management, be able to manage most important risks in a systematic way and hence improve decisionmaking Develop measures to manage risks in order to support the achievement of skyguide's objectives page 13

14 Process 0 Risk Management Framework : Risk Policy Statement Risk Policy Directive Risk Organisation Process incl. Methodology Reporting and Tools 1 Risk Identification Risk Assessment 4 Risk Monitoring and Review 5 Communication and Training 2 Risk Evaluation Risk Response 3 Risk Treatment page 14

15 Bow-Tie Model 1 Causes (or sources) Cause 1 Causes, event and consequences are described in a risk scenario Consequences (or effects) Consequence 1 Scope of ERM Cause 2 Event Consequence 2 Cause 3 Consequence 3 Cause 4 Preventive measures (action on causes) Protective measures (action on consequences) Consequence 4 Preventive measure act first on probability or likelihood Protective measure act first on impact or consequences A risk scenario should be understood as a "credible worst case scenario" : a remote but not impossible scenario with significant impact page 15

16 Risk Evaluation 2 Risk Evaluation Measure risks impact (or severity ) : using predefined criteria e.g. financial impact and non financial impact (on corporate and strategic objectives, reputational, etc.) likelihood (or probability of occurrence) : using the same time horizon as for severity, order of magnitude (rather than precise number) given by the most knowledgeable people interdependency and correlation between risks (portfolio effect) Risk map page 16

17 Risk Treatment 3 Risk Treatment Risk Map / Heat Map for Prioritization and selection of RM measures Avoid/Eliminate Accept/Retain/Bear Reduce/Hedge/Mitigate Insure Transfer (i.e. outsource) impact low high 2 all options may apply depending on nature of risk and risk appetite although Accept/Retain/Bear is limited because risk is mostly driven by external factor beyond management control (earthquake, etc.); contingency planning vital here 4 risks in this quadrant are usually Accepted at their present level; risks in this quadrant may be over-mitigated implying that resources could be allocated to other more significant risks 1 all options may apply depending on nature of risk and risk appetite 3 risks in this quadrant are often related to day-to-day operations and compliance issues (legal and regulatory); steps should be taken to Reduce their likelihood low high likelihood page 17

18 Risk Treatment 3 Avoid/Eliminate Accept/Retain/Bear Risk Treatment Reduce/Hedge/Mitigate Insure Transfer (i.e. outsource) I) Avoid/ Eliminate II) Reduce/ Hedge/Mitigate III) Insure Total Risk Example Residual Risk after Measures I, II and III Risk Exposure (how much we currently have) Total Risk I) Avoid/ Eliminate Risk after Measure I II) Reduce/ Hedge/ Mitigate Risk after Measure I and II Costs of Measures Costs of Total Risk + Residual Risk III) Insure Residual Risk after Measures I, II and III Risk Tolerance (how much we should have, how much we can bear) page 18

19 ERM extension - Concept Corporate Risk escalation (reporting lower-level risks which are above the threshold), aggregation (combining together identical risks) and reconciliation (avoiding counting same risk twice) are part of the approach. Organisational level Business process level Project / program level organisational level (corporate) Threshold Threshold Threshold Threshold Threshold Operations Engineering & technical services Safety, Security, Quality Finance & Services Directorate Processes O risks (O consolidation) OV risks, OL risks AIM risks STC risks C3.1 C3.5 (separately) C3.1 C3.4.1 C3.4.2 C3.6.1 C3.6.2 skyguide national risks C3.2 C3.3 Technical risks Projects/Programs Project/Program risks C3.8 S risks Physical security risks M1.1 M1.3 M2 M1.4 Financial risks M4.2 M4.3 E5.3 Infrastructure risks E5.1 Corporate IT risks E5.4 Corporate Development Strategic M1.2 risks M1.14 M3 E5.2 E5.5 D risks Reputational risks Human Resources HR risks M1.2 M1.15 M4.1 C1 C2 M1.10 E5.6 organisational level (department, division or business unit) business process level, program/project level page 19

20 Tool used at skyguide to support the whole ERM process page 20

21 Content overview of skyguide company activities and services enterprise risk management at skyguide overall ERM process extended ERM interface ERM-BCM at skyguide page 21

22 Process cycle - Harmonisation of ERM-CM-COS-IM-AM Crisis organisation management Audit management Risk management Contingency planning Issue management page 22

23 The Bow Tie model in ERM, BCM & COS Causes Consequences (potential COS Events) Cause 1 Disruptive Event Consequence 1 Scope of ERM Cause 2 Cause 3 Consequence 2 Consequence 3 Cause 4 Preventive measures (action on causes) Protective measures (action on consequences) Consequence 4 Risk Mitigation Measures & Business Continuity Plans Prevention Preventive measures act first on probability or likelihood Recovery Protective measures act first on impact or consequences page 23

24 Interface of the BCM Process with ERM & Procedure view COS ERM Analysis BCP? Y N 1 Design 2 Implementation 3 update risk mitigation actions end BCPs 1 In the Analysis phase a Business Impact Analysis (BIA) is conducted for each mission critical service as well as for projects or events that have been identified as BIA relevant 2 In the Design phase the Maximum Tolerable Period of Disruption (MTPD) and the Recovery Time Objective (RTO) are decided. After a gap analysis strategic and/or tactical options are identified that enable the RTO to be achieved. 3 In the Implementation phase, a Business Continuity Plan is drafted together with a planning team, that usually will also have the role of the incident response team if needed 4 In the Validation phase, the BCP is reviewed, maintained and tested through exercises in order to deliver its benefits in case of a crisis Validation 4 COS page 24

25 All risks are obvious when you know what to look for page 25

ENTERPRISE RISK MANAGEMENT (ERM) POLICY Republic Glass Holdings Corporation. Purpose. Goals

ENTERPRISE RISK MANAGEMENT (ERM) POLICY Republic Glass Holdings Corporation. Purpose. Goals Purpose This Enterprise Risk Management Policy (the ERM policy) provides the framework for managing risks across ( RGHC or the Company ). It contains the policies to guide employees, management and the

More information

MEMORANDUM. To: From: Metrolinx Board of Directors Robert Siddall Chief Financial Officer Date: September 14, 2017 ERM Policy and Framework

MEMORANDUM. To: From: Metrolinx Board of Directors Robert Siddall Chief Financial Officer Date: September 14, 2017 ERM Policy and Framework MEMORANDUM To: From: Metrolinx Board of Directors Robert Siddall Chief Financial Officer Date: September 14, 2017 Re: ERM Policy and Framework Executive Summary Attached are the draft Enterprise Risk Management

More information

Risk Evaluation, Treatment and Reporting

Risk Evaluation, Treatment and Reporting Chapter 8 Risk Evaluation, Treatment and Reporting In the previous chapter we looked at how risks are identified, described and estimated using a likelihood and consequences matrix. This is an essential

More information

Break the Risk Paradigms - Overhauling Your Risk Program

Break the Risk Paradigms - Overhauling Your Risk Program SESSION ID: GRC-T11 Break the Risk Paradigms - Overhauling Your Risk Program Evan Wheeler MUFG Union Bank Director, Information Risk Management Your boss asks you to identify the top risks for your organization

More information

Subject SP9 Enterprise Risk Management Specialist Principles Syllabus

Subject SP9 Enterprise Risk Management Specialist Principles Syllabus Subject SP9 Enterprise Risk Management Specialist Principles Syllabus for the 2019 exams 1 June 2018 Enterprise Risk Management Specialist Principles Aim The aim of the Enterprise Risk Management (ERM)

More information

Risk Management at the Deutsche Bundesbank March 2011

Risk Management at the Deutsche Bundesbank March 2011 Risk Management at the Deutsche Bundesbank March 2011 (C) Deutsche Bundesbank - Division Organisation 1 Agenda Definition of risk management [3] Factors of influence to review the RM set up [4] The Framework

More information

South Lanarkshire College Risk Management Policy and Procedures

South Lanarkshire College Risk Management Policy and Procedures 1. Purpose This policy and its procedures detail and communicate the College s approach to risk management. 2. Policy Statement South Lanarkshire College will effectively manage risk, taking all reasonable

More information

Enterprise Risk Management in WFP

Enterprise Risk Management in WFP Enterprise Risk Management in WFP 28 February 2011 For this discussion, we will structure risks according to the Humanitarian Policy Group-commissioned paper Contextual Risk: Risk of state failure, return

More information

Delivering Clarity to Credit Unions Through Expertise and Experience

Delivering Clarity to Credit Unions Through Expertise and Experience Jeff Owen, The Rochdale Group September 2012 Delivering Clarity to Credit Unions Through Expertise and Experience Enterprise Risk Management Lending Execution and Risk Management Merger Strategy and Realization

More information

INTEGRATING RISK MANAGEMENT AND BUSINESS CONTINUITY

INTEGRATING RISK MANAGEMENT AND BUSINESS CONTINUITY INTEGRATING RISK MANAGEMENT AND BUSINESS CONTINUITY June 2012 Sami Ahmed Assistant Vice President - MRC Paolo De Rosa Senior Vice President - MRC Introduction Purpose Raise your knowledge and awareness

More information

Enhanced Cyber Risk Management Standards. Advance Notice of Proposed Rulemaking

Enhanced Cyber Risk Management Standards. Advance Notice of Proposed Rulemaking Draft 11/29/16 Enhanced Cyber Risk Management Standards Advance Notice of Proposed Rulemaking The left column in the table below sets forth the general concepts that the federal banking agencies are considering

More information

Sections of the ORSA Report

Sections of the ORSA Report Lessons Learned From Orsa Reviews Impact on Risk Focused Examination NAIC Insurance Summit INS Companies Joe Fritsch, Director INS Companies Don Carbone, Exam Manager INS Companies Sections of the ORSA

More information

An Overview of the Enterprise Risk Management Process

An Overview of the Enterprise Risk Management Process An Overview of the Enterprise Risk Management Process Laureen Regan, Ph.D. Fox School of Business and Management Temple University What is Enterprise Risk Management? Risk Management is "the culture, processes

More information

Best Practices in ENTERPRISE RISK MANAGEMENT. [ Managing Risks Holistically ]

Best Practices in ENTERPRISE RISK MANAGEMENT. [ Managing Risks Holistically ] Best Practices in ENTERPRISE RISK MANAGEMENT [ Managing Risks Holistically ] INTRODUCTIONS MODERATOR: Bob Lipps, JD, CPA PANELISTS: Ron Wilcox Abel Pomar Karen Gordon, Esq. THE EVOLUTION OF RISK Traditional

More information

POLICY. Policy Title: Integrated Risk Management. Director, Strategic and Governance Services Centre

POLICY. Policy Title: Integrated Risk Management. Director, Strategic and Governance Services Centre POLICY Policy Title: Integrated Risk Management Policy Owner: Keywords: Policy Code: Director, Strategic and Governance Services Centre Risk Management PL201 [rm001] Intent Organisational Scope Definitions

More information

CITY UNIVERSITY OF HONG KONG Business Continuity Management Standard

CITY UNIVERSITY OF HONG KONG Business Continuity Management Standard CITY UNIVERSITY OF HONG KONG Business Continuity Management Standard (Approved by the Information Strategy and Governance Committee in December 2013; revision 1.1 approved by Chief Information Officer

More information

ENTERPRISE RISK MANAGEMENT POLICY FRAMEWORK

ENTERPRISE RISK MANAGEMENT POLICY FRAMEWORK ANNEXURE A ENTERPRISE RISK MANAGEMENT POLICY FRAMEWORK CONTENTS 1. Enterprise Risk Management Policy Commitment 3 2. Introduction 4 3. Reporting requirements 5 3.1 Internal reporting processes for risk

More information

GOV : Enterprise Risk Management Policy

GOV : Enterprise Risk Management Policy Name: Responsibility: Complements: Enterprise Risk Management Framework Coordinator, Enterprise Risk Management GOV-080-005: Enterprise Risk Management Policy Draft Date: November 2006; January 2012 Revised

More information

Risk Appetite. What is risk appetite?

Risk Appetite. What is risk appetite? Risk Appetite Presented by Mike Claffey 30 March 2011 What is risk appetite? Risk appetite is the degree of risk that an organisation is willing to accept in order to achieve its objectives, both in terms

More information

Master Class: Construction Health and Safety: ISO 31000, Risk and Hazard Management - Standards

Master Class: Construction Health and Safety: ISO 31000, Risk and Hazard Management - Standards Master Class: Construction Health and Safety: ISO 31000, Risk and Hazard Management - Standards A framework for the integration of risk management into the project and construction industry, following

More information

ENTERPRISE RISK MANAGEMENT Framework

ENTERPRISE RISK MANAGEMENT Framework STANDARDS OF SOUND BUSINESS AND FINANCIAL PRACTICES ENTERPRISE RISK MANAGEMENT Framework January 2018 Ce document est également disponible en français. Notice This document is intended as a reference tool

More information

1. Define risk. Which are the various types of risk?

1. Define risk. Which are the various types of risk? 1. Define risk. Which are the various types of risk? Risk, is an integral part of the economic scenario, and can be termed as a potential event that can have opportunities that benefit or a hazard to an

More information

Business Continuity Management and ERM

Business Continuity Management and ERM Business Continuity Management and ERM Partnership for Emergency Planning Kansas City Marshall Toburen GRC Strategist ERM, ORM, 3PM RSA A division of EMC 2 June 18, 2014 1 Agenda Intro State of ERM Today

More information

Procedure: Risk management

Procedure: Risk management Procedure: Risk management Purpose To outline the procedures involved for identification, assessment and management of risks. Procedure Introduction 1. This procedure outlines the University s Risk Awareness

More information

POLICY RISK MANAGEMENT AND REPORTING. Introduction

POLICY RISK MANAGEMENT AND REPORTING. Introduction POLICY RISK MANAGEMENT AND REPORTING Introduction Managing risk is a part of our everyday responsibilities for all of us. It enables us to make decisions about what we do and how we do things both strategically

More information

ENTERPRISE RISK MANAGEMENT (ERM) The Conceptual Framework

ENTERPRISE RISK MANAGEMENT (ERM) The Conceptual Framework ENTERPRISE RISK MANAGEMENT (ERM) The Conceptual Framework ENTERPRISE RISK MANAGEMENT (ERM) ERM Definition The Conceptual Frameworks: CAS and COSO Risk Categories Implementing ERM Why ERM? ERM Maturity

More information

Practical aspects of determining and applying a risk appetite for SMEs

Practical aspects of determining and applying a risk appetite for SMEs Practical aspects of determining and applying a risk appetite for SMEs By Tim Timchur acis, Director, ActivePro Consulting Pty Ltd Important to determine appetite for risk before determining what risk

More information

Business Auditing - Enterprise Risk Management. October, 2018

Business Auditing - Enterprise Risk Management. October, 2018 Business Auditing - Enterprise Risk Management October, 2018 Contents The present document is aimed to: 1 Give an overview of the Risk Management framework 2 Illustrate an ERM model Page 2 What is a risk?

More information

IAIS: Enterprise Risk Management for Capital Adequacy & Solvency Purposes. George Brady. IAIS Deputy Secretary General

IAIS: Enterprise Risk Management for Capital Adequacy & Solvency Purposes. George Brady. IAIS Deputy Secretary General IAIS: Enterprise Risk Management for Capital Adequacy & Solvency Purposes George Brady IAIS Deputy Secretary General Table of Contents 1. Introduction 2. Governance and an Enterprise Risk Management (ERM)

More information

ก ก Tools and Techniques for Enterprise Risk Management (ERM)

ก ก Tools and Techniques for Enterprise Risk Management (ERM) ก ก Tools and Techniques for Enterprise Risk Management (ERM) COSO ERM ISO ERM 31 2554 10:45 12:15.. 301, 302, 307 ก ก COSO Internal Control ERM Integrated Framework Application Technique ISO 31000 Guide

More information

FBF RESPONSE TO EBA CONSULTATION PAPER ON THE REVISION OF OPERATIONAL AND SOVEREIGN PART OF THE ITS ON SUPERVISORY REPORTING (EBA/CP/2016/20)

FBF RESPONSE TO EBA CONSULTATION PAPER ON THE REVISION OF OPERATIONAL AND SOVEREIGN PART OF THE ITS ON SUPERVISORY REPORTING (EBA/CP/2016/20) 2017.01.07 FBF RESPONSE TO EBA CONSULTATION PAPER ON THE REVISION OF OPERATIONAL AND SOVEREIGN PART OF THE ITS ON SUPERVISORY REPORTING (EBA/CP/2016/20) The French Banking Federation (FBF) represents the

More information

January 23, Yours sincerely, (Mrs. Tarisa Watanagase) Governor

January 23, Yours sincerely, (Mrs. Tarisa Watanagase) Governor Unofficial Translation by the courtesy of The Foreign Banks' Association This translation is for the convenience of those unfamiliar with the Thai language. Please refer to the Thai text for the official

More information

Finansinspektionen s Regulatory Code

Finansinspektionen s Regulatory Code Finansinspektionen s Regulatory Code Publisher: Finansinspektionen, Sweden, www.fi.se ISSN 1102-7460 Finansinspektionen s Regulations and General Guidelines regarding the management of operational risks;

More information

Guidance Note: Stress Testing Credit Unions with Assets Greater than $500 million. May Ce document est également disponible en français.

Guidance Note: Stress Testing Credit Unions with Assets Greater than $500 million. May Ce document est également disponible en français. Guidance Note: Stress Testing Credit Unions with Assets Greater than $500 million May 2017 Ce document est également disponible en français. Applicability This Guidance Note is for use by all credit unions

More information

Enterprise Risk Management Program

Enterprise Risk Management Program Enterprise Risk Management Program David W Sundvall, Risk Manager 3/2/2016 Page 0 of 12 Table of Contents Introduction... 2 Approach... 2 Risk Appetite... 3 Roles and Responsibilities... 3 Process... 4

More information

Introduction to Risk for Project Controls

Introduction to Risk for Project Controls Introduction to Risk for Project Controls By Eukeni Urrechaga, PE Quick view at Project Controls Project Controls, like project management, is much an art as it is a science. The secret of good project

More information

Risk Management: Principles, Methodologies and Techniques. Peter Getugi Internal Audit Manager ILRI

Risk Management: Principles, Methodologies and Techniques. Peter Getugi Internal Audit Manager ILRI Risk Management: Principles, Methodologies and Techniques Peter Getugi Internal Audit Manager ILRI NAIROBI 22 JUNE, 2010 Session Objectives What is Risk Management? Why is Risk Management importance rising?

More information

Journey of a Compliance Officer in ERM Implementation. SCCE Regional Conference September 8, Introduction

Journey of a Compliance Officer in ERM Implementation. SCCE Regional Conference September 8, Introduction Journey of a Compliance Officer in ERM Implementation SCCE Regional Conference September 8, 2017 1 Introduction Is there a formal ERM program within your institution? Is their alignment/coordination between

More information

Enterprise Risk Management Integrated Framework

Enterprise Risk Management Integrated Framework ISACA S IT Audit, Information Security & Risk Insights Africa 2014, Alisa Hotel Enterprise Risk Management Integrated Framework Tony Bediako May 20, 2014 Today s organizations are concerned about: Risk

More information

Managing risk appetite for operational and non-financial risks

Managing risk appetite for operational and non-financial risks Managing risk appetite for operational and non-financial risks John Thirlwell IIA, Bodø, 27 May 2013 Agenda What do we mean by operational and nonfinancial risks? What do we mean by risk appetite? A framework

More information

Managing Olympic Risks. Dr Will Jennings University of Southampton

Managing Olympic Risks. Dr Will Jennings University of Southampton Managing Olympic Risks Dr Will Jennings University of Southampton Outline 1. Risk and mega-events: complexity and decision-making under uncertainty 2. A brief history of risk management and the Olympics

More information

Risk Management. Seminar June Compiled by: Raaghieb Najjaar, Yaeesh Yasseen & Rashied Small

Risk Management. Seminar June Compiled by: Raaghieb Najjaar, Yaeesh Yasseen & Rashied Small Risk Management Seminar June 2017 Compiled by: Raaghieb Najjaar, Yaeesh Yasseen & Rashied Small Defining Risk Risk reflects the chance that the actual event may be different than the planned / expected

More information

Pillar III Disclosure Report 2017

Pillar III Disclosure Report 2017 Pillar III Disclosure Report 2017 Content Section 1. Introduction and basis for preparation 3 Section 2. Risk management objectives and policies 5 Section 3. Information on the scope of application of

More information

Overview of ERM Assessment Viewpoints (June 2016) Overview

Overview of ERM Assessment Viewpoints (June 2016) Overview ERM assessment main category Culture & Governance Control & Capital Adequacy Profile & Measurement Application to Business Management Overview of ERM Assessment Viewpoints (June 2016) Overview Examine

More information

TD BANK INTERNATIONAL S.A.

TD BANK INTERNATIONAL S.A. TD BANK INTERNATIONAL S.A. Pillar 3 Disclosures Year Ended October 31, 2013 1 Contents 1. Overview... 3 1.1 Purpose...3 1.2 Frequency and Location...3 2. Governance and Risk Management Framework... 4 2.1

More information

ORSA: A relevant part of the governance system within Solvency II

ORSA: A relevant part of the governance system within Solvency II ORSA: A relevant part of the governance system within Solvency II Prof. Dr. Martin Balleer, Georg-August-Universität Göttingen Germany Faculty of Economics Belgrade University 18th May 2016, Belgrade Solvency

More information

Scouting Ireland Risk Management Framework

Scouting Ireland Risk Management Framework No. SID 124A/15 Gasóga na héireann/scouting Ireland Issued Amended 20 th June 2015 Deleted Source: National Management Committee Scouting Ireland Risk Management Framework Revision Date Description # 20/06/2015

More information

The Country Risk Manager as Chief Risk Officer for the Government. Swiss Re, 3 June 2014

The Country Risk Manager as Chief Risk Officer for the Government. Swiss Re, 3 June 2014 The Country Risk Manager as Chief Risk Officer for the Government Swiss Re, 3 June 2014 Agenda Risk management fundamentals across private and public sectors Swiss Re's risk management process as an example

More information

Fraud Risk Management

Fraud Risk Management Fraud Risk Management Fraud Risk Assessment Part 2 2017 Association of Certified Fraud Examiners, Inc. Fraud Risk Assessment Frameworks Frameworks are helpful for performing, evaluating, and reporting

More information

The Risk Assessment Executives Are Begging For. Presentation Overview. Terminology

The Risk Assessment Executives Are Begging For. Presentation Overview. Terminology The Risk Assessment Executives Are Begging For Brian Zawada Rob Giffin Avalution Consulting LLC Presentation Overview Level-setting Regarding Terminology Likelihood Versus Severity Common Approaches to

More information

Subject ST9 Enterprise Risk Management Syllabus

Subject ST9 Enterprise Risk Management Syllabus Subject ST9 Enterprise Risk Management Syllabus for the 2018 exams 1 June 2017 Aim The aim of the Enterprise Risk Management (ERM) Specialist Technical subject is to instil in successful candidates the

More information

Enterprise Risk Management Focusing on the Right Risks

Enterprise Risk Management Focusing on the Right Risks 2014 CliftonLarsonAllen LLP Enterprise Risk Management Focusing on the Right Risks VGFOA 2015 Fall Conference October 22, 2015 CLAconnect.com Session Objectives 1.Identify factors driving the need for

More information

Risk Management Policy

Risk Management Policy Risk Management Policy May 2018 Contents 1.0 Purpose... 3 2.0 Scope... 3 3.0 Risk appetite... 3 4.0 Risk management process... 4 5.0 Measuring success... 7 6.0 Review of policy... 7 Appendix A Definitions

More information

Goodman Group. Risk Management Policy. Risk Management Policy

Goodman Group. Risk Management Policy. Risk Management Policy Goodman Group Contents 1. Overview... 3 1.1 Introduction... 3 1.2 Objectives of the... 3 1.3 Application... 3 1.4 Operative Provisions... 4 2. Risk Management... 5 2.1 Overview of Risk Management... 5

More information

Risk Management Framework

Risk Management Framework Risk Management Framework Risk Management Framework 1. The University views Risk Management as integral to the successful execution of its Strategy. In order to achieve the aims set out in our strategy,

More information

AIR TRAFFIC SAFETY OVERSIGHT

AIR TRAFFIC SAFETY OVERSIGHT ORDER 1100.161 CHG 1 AIR TRAFFIC SAFETY OVERSIGHT August 11, 2006 DEPARTMENT OF TRANSPORTATION FEDERAL AVIATION ADMINISTRATION Initiated By: AOV-1 1100.161 CHG 1 8/11/06 Page ii CHANGE U.S. DEPARTMENT

More information

MILA SULLIVAN PROCUREMENT CONSULTANT

MILA SULLIVAN PROCUREMENT CONSULTANT INTERNATIONAL CONFERENCE ON PUBLIC PRIVATE PARTNERSHIPS AND PUBLIC PROCUREMENT 2017 BLED, SLOVENIA MILA SULLIVAN PROCUREMENT CONSULTANT MILA@DAXPARTNERSHIP.COM FINE TUNING OF OBJECTIVES & RISKS SIGNIFICANT

More information

Information security management systems

Information security management systems BRITISH STANDARD Information security management systems Part 3: Guidelines for information security risk management ICS 35.020; 35.040 NO COPYING WITHOUT BSI PERMISSION EXCEPT AS PERMITTED BY COPYRIGHT

More information

PRINCIPLES FOR RISK MANAGEMENT IN NORGES BANK INVESTMENT MANAGEMENT LAID DOWN BY THE EXECUTIVE BOARD 10 JUNE 2009, LAST AMENDED 21 NOVEMBER 2018

PRINCIPLES FOR RISK MANAGEMENT IN NORGES BANK INVESTMENT MANAGEMENT LAID DOWN BY THE EXECUTIVE BOARD 10 JUNE 2009, LAST AMENDED 21 NOVEMBER 2018 PRINCIPLES FOR RISK MANAGEMENT IN NORGES BANK INVESTMENT MANAGEMENT LAID DOWN BY THE EXECUTIVE BOARD 10 JUNE 2009, LAST AMENDED 21 NOVEMBER 2018 1. Purpose and objective These principles represent our

More information

Ingenious Capital Management Limited: Pillar III Disclosure

Ingenious Capital Management Limited: Pillar III Disclosure CONTENTS 1. Introduction 2. Risk Management 3. Capital Resources 4. Internal Capital Adequacy Assessment Process (ICAAP) 5. Remuneration Policy Disclosure 1. INTRODUCTION 1.1 Scope of Application Ingenious

More information

Missing the boat? Cf. World Economic Forum: Insight Report Global Risks Seventh Edition, Geneva

Missing the boat? Cf. World Economic Forum: Insight Report Global Risks Seventh Edition, Geneva Insurance scenarios for risk identification and business model innovation Solvency Consulting Knowledge Series Authors Dr. Jürgen Dümont Dr. Thomas Schaffrath- Chanson Contacts solvency-solutions@munichre.com

More information

ICAAP Report Q3 2015

ICAAP Report Q3 2015 ICAAP Report Q3 2015 Contents 1. 2. 3. 4. 5. 6. 7. 8. 9. INTRODUCTION... 3 1.1 THE THREE PILLARS FROM THE BASEL COMMITTEE... 3 1.2 BOARD OF MANAGEMENT APPROVAL OF THE ICAAP Q3 2015... 3 1.3 CAPITAL CALCULATION...

More information

Risk Management in Italy: State of the art and perspectives. PMI Rome Italy Chapter

Risk Management in Italy: State of the art and perspectives. PMI Rome Italy Chapter Risk Management in Italy: State of the art and perspectives Marco Giorgino, Full Professor of Global Risk Management, Politecnico di Milano PMI Rome Italy Chapter November, 5 th 2009 Agenda 2» What is

More information

Risk Management. Webinar - July 2017

Risk Management. Webinar - July 2017 Risk Management Webinar - July 2017 Compiled by: Raaghieb Najjaar, Yaeesh Yasseen & Rashied Small Adapted and Facilitated by: Professor Enslin J. van Rooyen Risk Management - June 2017 2 Defining Risk

More information

M_o_R (2011) Foundation EN exam prep questions

M_o_R (2011) Foundation EN exam prep questions M_o_R (2011) Foundation EN exam prep questions 1. It is a responsibility of Senior Team: a) Ensures that appropriate governance and internal controls are in place b) Monitors and acts on escalated risks

More information

ENTERPRISE RISK MANAGEMENT (ERM) POLICY

ENTERPRISE RISK MANAGEMENT (ERM) POLICY ENTERPRISE RISK MANAGEMENT (ERM) POLICY November 2014 TABLE OF CONTENTS I. INTRODUCTION.... 3 A. Purpose... 3 B. Scope. 3 C. Enterprise Risk Management Vision 3 D. ERM Goals and Objectives. 4 II. RISK

More information

RISK MANAGEMENT FRAMEWORK

RISK MANAGEMENT FRAMEWORK Risk Management Framework RISK MANAGEMENT FRAMEWORK Purpose This Risk Management Framework introduces St. Michael s College s approach to risk management. It includes a definition of risk, a summary of

More information

Prudential Standard GOI 3 Risk Management and Internal Controls for Insurers

Prudential Standard GOI 3 Risk Management and Internal Controls for Insurers Prudential Standard GOI 3 Risk Management and Internal Controls for Insurers Objectives and Key Requirements of this Prudential Standard Effective risk management is fundamental to the prudent management

More information

Risk-Based Project Management Approach for Large- Scale Civil Engineering Projects

Risk-Based Project Management Approach for Large- Scale Civil Engineering Projects Risk-Based Project Management Approach for Large- Scale Civil Engineering Projects Alex Bredikhin, P.E., Risk Manager - Megaprojects, U.S. Army Corps of Engineers, Pittsburgh District 1000 Liberty Ave.,

More information

Quality Control & Compliance Initiative. This document is publicly available to any staff member on the following network path:

Quality Control & Compliance Initiative. This document is publicly available to any staff member on the following network path: Quality Control & Compliance Initiative RISK ASSESSMENT Author: Phonovation Quality Control Group Gavin Carpenter Effective Date: 20 th Nov 2013 Revised: 20 th Jan 2015 Revised by: To: Pedro Quintas All

More information

West Coast District Municipality. Risk Management Policy

West Coast District Municipality. Risk Management Policy West Coast District Municipality Risk Management Policy TABLE OF CONTENTS Page No. RISK MANAGEMENT POLICY 5 1. OVERVIEW 6 1.1. Policy Objective 6 1.2. Policy Statement 6 1.3. Risk Management Approach 6

More information

Solvency II Insights for North American Insurers. CAS Centennial Meeting Damon Paisley Bill VonSeggern November 10, 2014

Solvency II Insights for North American Insurers. CAS Centennial Meeting Damon Paisley Bill VonSeggern November 10, 2014 Solvency II Insights for North American Insurers CAS Centennial Meeting Damon Paisley Bill VonSeggern November 10, 2014 Agenda 1 Introduction to Solvency II 2 Pillar I 3 Pillar II and Governance 4 North

More information

Solvency Assessment and Management: Stress Testing Task Group Discussion Document 96 (v 3) General Stress Testing Guidance for Insurance Companies

Solvency Assessment and Management: Stress Testing Task Group Discussion Document 96 (v 3) General Stress Testing Guidance for Insurance Companies Solvency Assessment and Management: Stress Testing Task Group Discussion Document 96 (v 3) General Stress Testing Guidance for Insurance Companies 1 INTRODUCTION AND PURPOSE The business of insurance is

More information

Risk Management Disclosures

Risk Management Disclosures CITIBANK N.A. SRI LANKA Risk Management Disclosures As at 30.06.2016 Introduction and Overview Citi is a leading global bank with over 200 years experience and approximately 200 million customer accounts

More information

The Business Continuity Blueprint. A practical guide to. business continuity planning. PART 1 An Introduction

The Business Continuity Blueprint. A practical guide to. business continuity planning. PART 1 An Introduction The Business Continuity Blueprint A practical guide to business continuity planning PART 1 An Introduction CONTENTS FOREWORD A practical guide to Business Continuity Planning Part 1 - An Introduction It

More information

The ISO standard on risk management

The ISO standard on risk management The ISO 31 000 standard on risk management Eric Marsden well thy appetite, lest Sin Surprise thee, and her black attendant Death. Govern John Milton, Paradise Lost The ISO

More information

How to review an ORSA

How to review an ORSA How to review an ORSA Patrick Kelliher FIA CERA, Actuarial and Risk Consulting Network Ltd. Done properly, the Own Risk and Solvency Assessment (ORSA) can be a key tool for insurers to understand the evolution

More information

Statement of Guidance for Licensees seeking approval to use an Internal Capital Model ( ICM ) to calculate the Prescribed Capital Requirement ( PCR )

Statement of Guidance for Licensees seeking approval to use an Internal Capital Model ( ICM ) to calculate the Prescribed Capital Requirement ( PCR ) MAY 2016 Statement of Guidance for Licensees seeking approval to use an Internal Capital Model ( ICM ) to calculate the Prescribed Capital Requirement ( PCR ) 1 Table of Contents 1 STATEMENT OF OBJECTIVES...

More information

EFFECTIVE TECHNIQUES IN RISK MANAGEMENT. Joseph W. Mayo, PMP, RMP, CRISC September 27, 2011

EFFECTIVE TECHNIQUES IN RISK MANAGEMENT. Joseph W. Mayo, PMP, RMP, CRISC September 27, 2011 EFFECTIVE TECHNIQUES IN RISK MANAGEMENT Joseph W. Mayo, PMP, RMP, CRISC September 27, 2011 Effective Techniques in Risk Management Risk Management Overview Exercise #1 Break Risk IT Exercise #2 Break Risk

More information

APPENDIX 1. Transport for the North. Risk Management Strategy

APPENDIX 1. Transport for the North. Risk Management Strategy APPENDIX 1 Transport for the North Risk Management Strategy Document Details Document Reference: Version: 1.4 Issue Date: 21 st March 2017 Review Date: 27 TH March 2017 Document Author: Haddy Njie TfN

More information

Risk Management FUN! Humor Me

Risk Management FUN! Humor Me Risk Management FUN! Humor Me Leveraging Project Risk Management to Solidify Your RIM Business Continuity P R E S E N T E D B Y : M A R Y L. C L I N T O N, M B A, P M P W E D N E S D A Y, J U N E 2 1,

More information

STRESS TESTING GUIDELINE

STRESS TESTING GUIDELINE c DRAFT STRESS TESTING GUIDELINE November 2011 TABLE OF CONTENTS Preamble... 2 Introduction... 3 Coming into effect and updating... 6 1. Stress testing... 7 A. Concept... 7 B. Approaches underlying stress

More information

Report on Internal Control

Report on Internal Control Annex to letter from the General Secretary of the Autorité de contrôle prudentiel to the Director General of the French Association of Credit Institutions and Investment Firms Report on Internal Control

More information

RISK AND BUSINESS CONTINUITY MANAGEMENT

RISK AND BUSINESS CONTINUITY MANAGEMENT RISK AND BUSINESS CONTINUITY MANAGEMENT EFFECTIVE: 18 MAY 2010 VERSION: 1.4 FINAL Last updated date: 29 September 2015 Uncontrolled when printed 2 Effective: 18 May 2010 CONTENTS 1 POLICY STATEMENT...

More information

Applying COSO s Enterprise Risk Management Integrated Framework. September 29, 2004

Applying COSO s Enterprise Risk Management Integrated Framework. September 29, 2004 Applying COSO s Enterprise Risk Management Integrated Framework September 29, 2004 Today s organizations are concerned about: Risk Management Governance Control Assurance (and Consulting) ERM Defined:

More information

INTERNAL AUDIT PLAN OF ACTIVITIES

INTERNAL AUDIT PLAN OF ACTIVITIES SDCERA INTERNAL AUDIT PLAN OF ACTIVITIES Fiscal Years 2012-2015 CHRISTINA MCGOUGH, INTERNAL AUDIT MANAGER 12 Table of Contents Executive Summary... 1 Overview... 2 Risk assessment... 2 The audit plan...

More information

Risk Management Policy

Risk Management Policy Risk Management Policy 1 Document configuration control Policy Title Author/Job Title Policy Version Version 1.0 Status Reference and guidance Consultation Forum Risk Management Policy Jonathan Sutton

More information

INTERNAL AUDIT AND OPERATIONAL RISK T A C K L I N G T O D A Y S E M E R G I N G R I S K S T O G E T H E R

INTERNAL AUDIT AND OPERATIONAL RISK T A C K L I N G T O D A Y S E M E R G I N G R I S K S T O G E T H E R INTERNAL AUDIT AND OPERATIONAL RISK T A C K L I N G T O D A Y S E M E R G I N G R I S K S T O G E T H E R Operational Risk Management Today Companies are struggling to obtain a holistic view of risk and

More information

RISK MANAGEMENT ON USACE CIVIL WORKS PROJECTS

RISK MANAGEMENT ON USACE CIVIL WORKS PROJECTS RISK MANAGEMENT ON USACE CIVIL WORKS PROJECTS Identify, Quantify, and 237 217 200 237 217 200 Manage 237 217 200 255 255 255 0 0 0 163 163 163 131 132 122 239 65 53 80 119 27 252 174.59 110 135 120 112

More information

SOLID GROUP INC. ENTERPRISE RISK MANAGEMENT POLICY

SOLID GROUP INC. ENTERPRISE RISK MANAGEMENT POLICY SOLID GROUP INC. ENTERPRISE RISK MANAGEMENT POLICY SECTION 1. PURPOSE This Policy establishes the standards, processes and accountability structure to identify, assess, prioritize and manage key risk exposures

More information

Enterprise Risk Management

Enterprise Risk Management ASSOCIATION ACTUARIELLE INTERNATIONALE INTERNATIONAL ACTUARIAL ASSOCIATION Enterprise Risk Management All of life is the management of risk, not its elimination Walter Wriston, former chairman of Citicorp

More information

TONGA NATIONAL QUALIFICATIONS AND ACCREDITATION BOARD

TONGA NATIONAL QUALIFICATIONS AND ACCREDITATION BOARD TONGA NATIONAL QUALIFICATIONS AND ACCREDITATION BOARD RISK MANAGEMENT FRAMEWORK 2017 Overview Tonga National Qualifications and Accreditation Board (TNQAB) was established in 2004, after the Tonga National

More information

Foundations of Risk Management

Foundations of Risk Management Foundations of Risk Management Introduction Level 1 Foundations of Risk Management Topics 1. 2. CORPORATE RISK MANAGEMENT: A PRIMER 3. CORPORATE GOVERNANCE AND RISK MANAGEMENT 4. WHAT IS ERM? 5. RISK-TAKING

More information

Perpetual s Risk Management Framework

Perpetual s Risk Management Framework Perpetual s Risk Management Framework Perpetual s Risk Management Framework Context Perpetual Limited (Perpetual) is a diversified financial services firm, listed on the Australian Securities Exchange.

More information

ERM and ORSA Assuring a Necessary Level of Risk Control

ERM and ORSA Assuring a Necessary Level of Risk Control ERM and ORSA Assuring a Necessary Level of Risk Control Dave Ingram, MAAA, FSA, CERA, FRM, PRM Chair of IAA Enterprise & Financial Risk Committee Executive Vice President, Willis Re September, 2012 1 DISCLAIMER

More information

Exploring the New Era of ORSA Enterprise Risk Management (ERM)/ Own Risk and Solvency Assessment (ORSA) Committee

Exploring the New Era of ORSA Enterprise Risk Management (ERM)/ Own Risk and Solvency Assessment (ORSA) Committee Exploring the New Era of ORSA Enterprise Risk Management (ERM)/ Own Risk and Solvency Assessment (ORSA) Committee Copyright 2015 by the American Academy of Actuaries. All Rights Reserved. Presenters Tricia

More information

BCMS APPROACH. Implementing Business Continuity for Organization

BCMS APPROACH. Implementing Business Continuity for Organization BCMS APPROACH Implementing Business Continuity for Organization BC INSTANCES Flight EK521 arriving from Trivandrum, India crash-lands in Dubai 282 passengers and 18 crew on board including 24 Britons One

More information

Identification & Assessment of Risks Authors: Ali Basharat & Zeenoor Sohail Sheikh

Identification & Assessment of Risks Authors: Ali Basharat & Zeenoor Sohail Sheikh Identification & Assessment of Risks 2018 Authors: Ali Basharat & Zeenoor Sohail Sheikh Risk Management for the Microfinance Sector (2018) Identification & Assessment of Risks 1) Risk Register Tool An

More information

Policy Number: 040 Risk Management August 2018

Policy Number: 040 Risk Management August 2018 Policy Number: 040 Risk Management August 2018 Policy Details 1. Owner Manager, Business Services 2. Compliance is required by Staff, contractors and volunteers 3. Approved by The Commissioner 4. Date

More information

COMMUNIQUE. Page 1 of 13

COMMUNIQUE. Page 1 of 13 COMMUNIQUE 16-COM-001 Feb. 1, 2016 Release of Liquidity Risk Management Guiding Principles The Credit Union Prudential Supervisors Association (CUPSA) has released guiding principles for Liquidity Risk

More information